1

Security Governance Jobs (NOW HIRING)

The Ro le A Principal Security Governance Consultant is expected to have a deep level of expertise and vast knowledge base in core information security governance, risk, compliance, and privacy ...

The Role Presidio is seeking a Consultant to join our Information Security Governance (ISG) consulting services team in a remote capacity. As part of our team, you will help clients identify security ...

Sr. Information Security Governance Manager

Austin, TX · On-site

$105K - $143K/yr

As a member of the Information Security team, you will be based in Sonar's Austin office leading the Security Governance and Customer Trust domains of our security risk management program. You will ...

next page

Showing results 1-20

Security Governance information

See salary details

$11

$19

$25

How much do security governance jobs pay per hour?

As of Jul 20, 2026, the average hourly pay for security governance in the United States is $19.03, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.75 per hour, depending on experience, location, and employer.

What are the main challenges faced by professionals in Security Governance, and how can they be addressed?

Professionals in Security Governance often encounter challenges such as aligning security policies with business objectives, managing compliance with evolving regulations, and fostering a security-conscious culture across diverse teams. Addressing these challenges requires ongoing communication with stakeholders, regular policy reviews, and effective training programs to ensure everyone understands their role in maintaining security. Collaboration with IT, legal, and business units is essential to implement governance frameworks that are both practical and robust, enabling organizations to mitigate risks while supporting operational goals.

What are the key skills and qualifications needed to thrive in Security Governance, and why are they important?

To excel in Security Governance, a strong understanding of information security principles, risk management, and regulatory compliance is essential, often supported by a degree in cybersecurity or a related field. Familiarity with frameworks like ISO 27001, NIST, and certifications such as CISSP or CISM are highly valued, along with experience using governance, risk, and compliance (GRC) tools. Outstanding analytical thinking, attention to detail, and effective communication skills help professionals influence policy and collaborate across teams. These skills are crucial for establishing robust security policies, minimizing organizational risk, and ensuring compliance with industry standards.

What is Security Governance?

Security Governance refers to the framework and processes that ensure an organization's information security strategies are aligned with its business objectives, regulatory requirements, and risk management practices. It involves establishing policies, roles, responsibilities, and oversight mechanisms to protect information assets effectively. Security governance provides direction and accountability, making sure that security initiatives are well-coordinated and that risks are managed at the highest level. This helps organizations maintain trust, comply with laws, and respond effectively to evolving threats.

Can you make $500,000 a year in cyber security?

Security governance roles, such as Chief Information Security Officers or senior security executives, can reach or exceed $500,000 annually with extensive experience, advanced certifications, and leadership responsibilities. Most cybersecurity professionals, including security analysts and engineers, earn lower salaries, but high-level positions in large organizations or consulting firms can offer such compensation. Developing expertise in risk management, compliance, and strategic planning can help achieve these salary levels.

What does security governance do?

Security governance involves establishing policies, procedures, and standards to manage an organization's security risks. It ensures that security strategies align with business objectives and compliance requirements, often requiring skills in risk management, policy development, and security frameworks like ISO 27001 or NIST. Security governance provides oversight and accountability to protect information assets effectively.

What is the highest paying security job?

The highest paying security jobs are often executive roles such as Chief Information Security Officer (CISO) or Security Director, with salaries exceeding $150,000 annually. These positions require extensive experience, leadership skills, and knowledge of security frameworks, risk management, and compliance.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically not entry-level and often requires some experience in cybersecurity, network monitoring, or related fields. Entry-level positions may be labeled as SOC analyst I or junior SOC analyst, but higher-level roles usually demand certifications like CompTIA Security+ or CISSP and familiarity with security tools such as SIEM systems.

What is the difference between Security Governance vs Security Analyst?

AspectSecurity GovernanceSecurity Analyst
CertificationsISO 27001 Lead Implementer, CISSP, CISMCompTIA Security+, CISSP, GIAC Security Essentials
Work EnvironmentStrategic, policy-focused, executive-levelOperational, technical, monitoring security threats
Employer & Industry UsageOrganizations' security leadership, compliance teamsSecurity operations centers, IT departments

Security Governance focuses on establishing policies, frameworks, and strategic oversight to ensure overall security compliance. In contrast, Security Analysts handle day-to-day security monitoring, threat detection, and incident response. Both roles are essential but differ in scope, responsibilities, and focus areas within the cybersecurity landscape.

More about Security Governance jobs
What cities are hiring for Security Governance jobs? Cities with the most Security Governance job openings:
What states have the most Security Governance jobs? States with the most job openings for Security Governance jobs include:
Director, Security Governance

Director, Security Governance

Beth Israel Lahey Health

Charlestown, MA

$176K - $205K/yr

Full-time

Posted 3 days ago

New


Beth Israel Lahey Health rating

7.0

Company rating: 7.0 out of 10

Based on 149 frontline employees who took The Breakroom Quiz

416th of 886 rated healthcare providers


Job description

When you join the growing BILH team, you're not just taking a job, you’re making a difference in people’s lives.

The Director of Security Governance, Risk & Compliance, leads and manages the Governance Risk and Compliance (GRC) function and is responsible for partnering with the It Security Leader in managing an organization-wide, information risk management program, security compliance program and security awareness campaign. The Director partners with administrative, and
executive leadership to establish and manage a shared vision for information security and develop a compliance program to assess cybersecurity and information risks. Responsibilities include strategy, architecture, solutions design, program coordination and execution, awareness, outreach, policy and standard development as well as reporting on information security program effectiveness.

Job Description:

Primary Responsibilities:
Leads IT Security Governance, Risk and Compliance program. (essential)
Collaborates with IT Security Leader on building a culture focused on proactive risk management and security best practices. (essential)
Leads IT Security Steering Committee, infusing information security governance procedures that foster resiliency, raise awareness, govern policy and review security related activities. (essential)
Provides clear risk mitigating directives for projects with IT components. (essential)
Responsible for the development, implementation, and execution of BILH-wide information security training and awareness programs. Provides professional and technical training and direction for internal team members as well as
external staff. (essential)
Facilitates and participates in annual internal/external audits using industry standard security methods to help strengthen internal security controls, procedures and policies. (essential)
Investigates security incidents, develop remediation plans, and work with appropriate stakeholders to implement resolutions. (essential)
Serves as a lead advisor on security matters to ensure appropriate levels of security are integrated in process designs and architecture; demonstrates ability to be a respected information security advisor to senior management, as well as to IT Shared Service team. (essential)
Works with IT Security team in the development and acceptance of IT policies and procedures; ensures program standards follow applicable State and Federal regulatory requirements. (essential)
Stays current with all relevant IT security and compliance issues, technologies, and requirements, as well as with emerging best practices in IT program management, planning and governance; Maintains professional and technical knowledge by attending industry workshops, conferences, and participating in personal and professional networks. (essential)
Has the authority to direct and support employees daily work activities. Has the direct responsibility to undertake the following employment actions: hiring, termination, corrective action and performance reviews.

Direct Reports: 2-3

Indirect Reports: None


Required Qualifications:
Bachelor's degree required. Master's degree in Law degree preferred.
More than 10 years related work experience required and 3-5 years supervisory/management experience required
At least 10 years of varied information technology management experience is required, five years of which must be directly related to IT program management and planning as well as computer, information, and network security
assessment, administration, and management.
Experience in the health care industry is essential along with knowledge about program management, information security technology, medical records, patient privacy and confidentiality.
Other key requirements include project planning and project management experience; Advanced technical computer skills as required for technical support specific to functional area and related systems.

Pay Range:

$176,800.00 USD - $205,920.00 USD

The pay range listed for this position is the annual base salary range the organization reasonably and in good faith expects to pay for this position at this time. Actual compensation is determined based on several factors, that may include seniority, education, training, relevant experience, relevant certifications, geography of work location, job responsibilities, or other applicable factors permissible by law. 

As a health care organization, we have a responsibility to do everything in our power to care for and protect our patients, our colleagues and our communities. Beth Israel Lahey Health requires that all staff be vaccinated against influenza (flu) as a condition of employment. More than 35,000 people working together. Nurses, doctors, technicians, therapists, researchers, teachers and more, making a difference in patients' lives. Your skill and compassion can make us even stronger. Equal Opportunity Employer/Veterans/Disabled

What Beth Israel Lahey Health employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom